iSherlock developed by HGiga has an OS Command Injection vulnerability, allowing unauthenticated local attackers to inject arbitrary OS commands and execute them on the server.
No analysis available yet.
Vendor Solution
Update iSherlock-base-4.5 package to version 476 or later Update iSherlock-audit-4.5 package to version 261 or later Update iSherlock-base-5.5 package to version 476 or later Update iSherlock-audit-5.5 package to version 261 or later
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 16 Apr 2026 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The iSherlock developed by HGiga has an OS Command Injection vulnerability, allowing unauthenticated local attackers to inject arbitrary OS commands and execute them on the server. | |
| Title | HGiga|iSherlock - OS Command Injection | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2026-04-16T02:25:04.710Z
Reserved: 2026-04-15T11:32:29.759Z
Link: CVE-2026-6349
No data.
Status : Received
Published: 2026-04-16T03:16:30.660
Modified: 2026-04-16T03:16:30.660
Link: CVE-2026-6349
No data.
OpenCVE Enrichment
No data.